ISO/IEC 27001:2022
ISO 27001
Information Security
The international gold standard for information security management. Enterprise procurement teams treat it as the baseline requirement for SaaS vendors. Vanta automates up to 80% of the evidence collection.
ERP SaaS ยท ITAD ยท Training
Target: Q4 2026 โ Vanta-accelerated
โ In ProgressCE CERTIFIED
Cyber Essentials
NCSC UK Government
UK government-backed NCSC scheme. Required for all UK public sector contracts and increasingly demanded by NHS, local authorities, and regulated industry buyers.
All service lines
Target: Q3 2026 โ Foundation for ISO 27001
โ In ProgressDPA 2018
UK GDPR
ICO Registered Controller
Mandatory for any UK company processing personal data. ICO registration as both a Data Controller and Data Processor is a legal requirement.
ERP SaaS ยท ITAD ยท Training
Achieved โ ICO registration complete
โ CertifiedWEEE 2013
WEEE Approved
Environment Agency
Mandatory legal requirement for any company treating or transporting Waste Electrical and Electronic Equipment in the UK.
ITAD
Achieved โ Registered with approved WEEE scheme
โ CertifiedADISA 8.0
ADISA 8.0 UK
ICO-Approved ITAD Scheme
Approved by the ICO as a UK GDPR Certification Scheme and endorsed by the NCSC. THE gold standard for ITAD providers in the UK.
ITAD
Target: Q1 2027 โ UKAS audit-based
โ In ProgressCE+ PLUS
Cyber Essentials Plus
NCSC Independent Audit
The enhanced tier includes an independent technical audit and vulnerability assessment. Required for MoD suppliers and NHS Digital.
ERP SaaS ยท ITAD
Target: Q1 2027 โ Follows CE certification
โ RoadmapSOC 2 TYPE II
SOC 2 Type II
AICPA Trust Services
Increasingly required by enterprise SaaS procurement. Vanta reuses ISO 27001 evidence, reducing audit prep by 60%.
ERP SaaS
Target: Q3 2027 โ Evidence reused from ISO 27001
โ RoadmapISO 14001:2015
ISO 14001
Environmental Management
Required for public sector tenders and ESG-conscious enterprise clients. Particularly relevant for the MCN ITAD service.
ITAD ยท Operations
Target: Q2 2027
โ RoadmapBS EN 15713
BS EN 15713
Secure Destruction Standard
British standard for secure destruction of confidential material, embedded in MCN's ITAD chain-of-custody workflow from day one.
ITAD
Achieved โ Process-embedded from launch
โ CertifiedISO/IEC 27701:2019
ISO 27701
Privacy Information Mgmt
A privacy extension to ISO 27001, directly mapping to GDPR requirements. Expected by regulated-sector clients.
ERP SaaS ยท Training
Target: Q4 2027 โ Extends ISO 27001 ISMS
โ RoadmapISO 9001:2015
ISO 9001
Quality Management
Demonstrates systematic quality management across all service lines for enterprise procurement and professional services contracts.
All service lines
Target: Q1 2028
โ RoadmapISO 22301:2019
ISO 22301
Business Continuity
Business Continuity Management standard validating MCN's multi-cloud DR architecture across AWS, GCP, and Azure.
ERP SaaS
Target: Q2 2028
โ RoadmapG-CLOUD 14
G-Cloud 14
Crown Commercial Service
UK government cloud marketplace framework enabling direct sales to NHS, local councils, and government departments.
ERP SaaS ยท Training
Target: Q3 2027
โ RoadmapPCI DSS v4.0
PCI DSS
Payment Card Security
Required when ERPNext deployments handle payment card data for retail, e-commerce, and microfinance clients.
ERP SaaS (Retail ยท Microfinance)
Target: Q4 2027 โ client-specific scoping
โ RoadmapIIP STANDARD
Investors in People
People Development Standard
Internationally recognised people management standard, strengthening Training Academy credibility for CPD-accredited course recognition.
Training Academy ยท HR
Target: Q2 2028
โ Roadmap